33,004 Topics

Member Avatar for
Member Avatar for Mady

I had a little viruses attack on my computer. Did my best to get rid of them, but still some things, like Norton WMI Update, don't work. Would you be so kind to have a look in my Hjt log? (windows2000) Logfile of HijackThis v1.98.2 Scan saved at 12:23:12, on …

Member Avatar for crunchie
0
548
Member Avatar for ouch

Have I been hijacked again? :o I was looking for a new desktop, and I'm not sure if I got hit. Here's my Log...thank you, for your help. Logfile of HijackThis v1.98.2 Scan saved at 4:24:08 PM, on 10/10/2004 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 …

Member Avatar for crunchie
0
238
Member Avatar for GeekDice

This is the contents of : HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-.] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./01] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./012] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'(] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-.] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./01] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./012] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'(] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-.] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0] …

0
67
Member Avatar for itek4u

:-| I have a client that is having a major run-in with this nuisance that pops up with a blank window having just this message: sendExternalEvent('EVENT:IEBROWSER:www.ad-w-a-r-e.com/callback_ron.php?GUID={42C12A41-165F-11D9-86EB-444553540000}&bidid=5'); I installed AdAware SE, Spybot 1.3, AVG antivirus, scanned with Trend housecall with everything with the most current updates. In this machine, if you …

Member Avatar for deonnanicole
0
134
Member Avatar for I hate pop ups

I cannot scandisk or defrag my computer because it freezes it. I have just reinstalled win 98se over itself again due to an explorer error upon start up. That seemed to do the trick but I still cannot defrag or scan. I am just trying to get everything straight here. …

Member Avatar for I hate pop ups
0
126
Member Avatar for jime0726

i was wondering if there is a way to put a rules wizard into a logon script so a rule created by one person can be pushed to everyone over the network. everybody is running w2k pro on their desktops, we are running w2k server on all our servers with …

Member Avatar for jime0726
0
136
Member Avatar for bob6831

Hi. I have a Sony VAIO WinXP laptop that comes up with this msg everytime when I start the computer up: You (or a program) have requested information from sdcevents4.sel.sony.com. Which connection do you want to use? Does anyone know how I can stop this message? Note that I don't …

0
46
Member Avatar for EdDLicious

Ok, so i've ran both the most current version of adaware - and trendmicro's housecall - both in safe mode - and despite these efforts, as well as checking the registry for any odd entrys in /run - i am still having pop-up issues... can someone please examine my log? …

Member Avatar for crunchie
0
204
Member Avatar for tek

I am having a problem removing about:blank. Have tried Pest Patrol, Spybot, CWShredder and none have worked. I really need help! Here is my log. Logfile of HijackThis v1.98.2 Scan saved at 6:31:57 PM, on 9/22/2004 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: …

Member Avatar for crunchie
0
259
Member Avatar for OurNation

Windows Xp service pack 2 I have the mouse finder thing ( I have no idea why)on where the mouse gets a circle around it when you press control for some reason everyone once in a while the mouse finder finds the mouse its not to bad but is it …

Member Avatar for caperjack
0
80
Member Avatar for Occ36

When i click to open Paint some error comes up telling me that it has performed and illegal operation...... The details are the following: MSPAINT caused an invalid page fault in module MFC42.DLL at 016f:6c37f9eb. Registers: EAX=00000000 CS=016f EIP=6c37f9eb EFLGS=00010202 EBX=00680c94 SS=0177 ESP=0056f91c EBP=0056f940 ECX=00007fff DS=0177 ESI=00691330 FS=1247 EDX=000163a4 ES=0177 …

Member Avatar for caperjack
0
161
Member Avatar for bill786

I have Windows XP SP2, Toshiba laptop. Well, after doing some scans with spybot, and ad-ware, and after restarting my computer. I noticed mostly everything is appearing italicized(all this stuff I am typing is also italicized (for me)). I really don't know what happened, all of a sudden everything is …

Member Avatar for Catweazle
0
265
Member Avatar for dvr

I got a US robotics internal modem it worked fine about a month ago. Then I tried it to day and it says no dial tone, if I unplug the phone and plug it back in I get dial tone on the phone. If I try to dial out agian …

Member Avatar for qt 3.14159
0
82
Member Avatar for Craig5564

I was having problems with my monitor so I ordered a new NEC hooked it up and restarted the computer. Than I found out that it wasn't the monitor at all had the same real grainy bad color in the screen. So I figured it was the Video adapter. So …

Member Avatar for Craig5564
0
94
Member Avatar for svikik

Hi! I discovered today some links that I didn't save , are saved on my PC. This is the last Hijack logfile: Logfile of HijackThis v1.98.2 Scan saved at 20:40:07 PM, on 10/6/2004 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe …

Member Avatar for svikik
0
509
Member Avatar for raharris1017

Logfile of HijackThis v1.98.2 Scan saved at 10:48:08 AM, on 10/13/2004 Platform: Windows XP (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 (6.00.2600.0000) Running processes: C:\WINNT\System32\smss.exe C:\WINNT\system32\winlogon.exe C:\WINNT\system32\services.exe C:\WINNT\system32\lsass.exe C:\WINNT\system32\svchost.exe C:\WINNT\System32\svchost.exe C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe C:\WINNT\system32\spoolsv.exe C:\WINNT\Explorer.EXE C:\PROGRA~1\Iomega\System32\AppServices.exe C:\WINNT\System32\hkcmd.exe C:\WINNT\System32\SK9910DM.EXE C:\WINNT\GWMDMMSG.exe C:\Program Files\Norton AntiVirus\navapsvc.exe C:\Program Files\Roxio\Easy CD Creator …

0
82
Member Avatar for Catweazle

[i]Edit: Thanks to Dani for 'cleaning up' this topic a bit. Should any of our members have links to useful sites, or items of their own which they consider would make a useful addition to the contents here, please send them to one of the Security Forum moderators via PM …

Member Avatar for crunchie
0
2K
Member Avatar for lowleft

I ran spybot, adaware, and disabled window blinds. Can anyone tell me wht I need to get rid of to make my computer work right again? :rolleyes: Thanks Logfile of HijackThis v1.98.2 Scan saved at 7:00:43 AM, on 10/9/2004 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 …

Member Avatar for crunchie
0
476
Member Avatar for DamnIE

I normally use firefox as my main browser but for some reason i opened internet explorer today. I havent used it since probably may and its almost certainly out of date security wise. Well after using it for less then 5 minutes i get 5 pop ups from AVG saying …

Member Avatar for dlh6213
0
244
Member Avatar for LadyMcbeth

Hi, My brother's pc is recently hijacked. The error reads:- Error loading C:\Windows\Downloaded Program Files\bridge.dll. I've enclosed my hijackthis log as follows:- Thanks. Looking forward to ur earliest reply. Logfile of HijackThis v1.97.7 Scan saved at 7:43:56 PM, on 10/3/2004 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 …

Member Avatar for LadyMcbeth
0
269
Member Avatar for OurNation

In windows word for windows xp service pack 2 mine starts with track changes on. This is very annoying can some one share with me on how to keep this from happening

Member Avatar for OurNation
0
180
Member Avatar for krash

Running Win 2K SP4. My problem is that when I click Start-Run... and type in a program name such as regedit, I get - "Cannot find the file 'regedit' (or one of its components). Make sure the path and filename are correct and that all required libraries are available." Yet …

Member Avatar for krash
0
119
Member Avatar for lormik

hello when i sign into my msn it says this "WE ARE SORRY WE COULDNT SIGN YOU IN BECAUSE THE SIGN IN NAME OR PASSWORD IS INCORRECT OR DOESNT EXIST" what does this mean i know that i have the right password and sign in name. I went to sign …

Member Avatar for cute_jade
0
214
Member Avatar for frankiejose

I have a problem with a computer that didn't have a password and now it comes with the message abbout a system password. how I can get rid of it without knowing the one that's there.

Member Avatar for blazingcomet
0
77
Member Avatar for Dani

[font=Arial][size=5][color=#0000ff][i][size=2][color=black][font=Verdana][color=black][i]I found this in a few different places around the 'net - hopefully it's helpful:[/i][/color][/font] [/color][/size][/i][/color][/size][/font][font=Arial][size=5][color=#0000ff]Schedule Tasks in Windows XP [/color][/size][/font][font=Arial][size=2][color=#000000]With Scheduled Tasks, you can schedule any script, program, or document to run at a time that is most convenient for you. Scheduled Tasks starts every time that you start …

Member Avatar for Cup of Squirrel
0
163
Member Avatar for PRAKHAR

when ever i run spybot S&D, some malware DSO EXPLOIT APPEARS. It comes back repeatedly whenever i run the scan and even after i fix it. please help

Member Avatar for PRAKHAR
0
80
Member Avatar for Oneskibunny

For some reason my explorer home page is locked meaning I do not have access to changing it. I have since upgraded my norton, run spybot and searched for the problem without success. Any ideas as to what is causing this and how to fix it?

Member Avatar for crunchie
0
117
Member Avatar for I hate pop ups

I continue to get pop ups and I know I have to have spyware installed. I have panicware pop up stopper running, also use bho demon and cws and spybot s&d. I was hoping that if I post my HJT log I could get some help. I am at wits …

Member Avatar for crunchie
0
215
Member Avatar for Lappe7959

I think I fixed everything that was wrong with my computer, running Spybot S&D, Adaware and Mcafee virus scan, but I wanted to know if all the bad stuff was gone..Thanks Logfile of HijackThis v1.98.2 Scan saved at 10:36:47 PM, on 10/11/2004 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet …

Member Avatar for crunchie
0
77
Member Avatar for DonutBanana

I cannot go online on my other computer. It is a Windows XP with SP2. I have ad-aware scanned it, Giant AntiSpyware scan, SpyBot S&D, and even Nortron AntiVirus. I'd post the Hijack this log, but I cant go online on that pc to post it. Please help, I need …

Member Avatar for kiwitech
0
97

The End.